Skip to content

Bump Netty to 4.1.89.Final, CVE-2022-41915#584

Merged
mp911de merged 1 commit intopgjdbc:mainfrom
patriknw:wip-netty-patriknw
Feb 15, 2023
Merged

Bump Netty to 4.1.89.Final, CVE-2022-41915#584
mp911de merged 1 commit intopgjdbc:mainfrom
patriknw:wip-netty-patriknw

Conversation

@patriknw
Copy link
Copy Markdown
Contributor

  • The CVE is probably not related to how Netty is used in r2dbc-postgresql but nice to use latest patch to avoid warnings from security scanning tools.

* The CVE is probably not related to how Netty is used in r2dbc-postgresql
  but nice to use latest patch to avoid warnings from security scanning tools.
@mp911de
Copy link
Copy Markdown
Collaborator

mp911de commented Feb 15, 2023

Thank you for your contribution. That's merged now.

@mp911de mp911de added this to the 1.0.1.RELEASE milestone Feb 15, 2023
@mp911de mp911de added the type: dependency-upgrade A dependency upgrade label Feb 15, 2023
mp911de pushed a commit that referenced this pull request Feb 16, 2023
* The CVE is probably not related to how Netty is used in r2dbc-postgresql
  but nice to use latest patch to avoid warnings from security scanning tools.

[#584]
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

type: dependency-upgrade A dependency upgrade

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants